cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1333
Views
0
Helpful
7
Replies

Change DNS server FTD High Availability

Hi

I have two FTD 2130 (High Availability) and FMC 1600 

I need to change the CLI server DNS on my high availability FTD 2130 (CLI DNS for management) no change DNS GUI on my FMC

the older DNS server no works and now don't have resolution name

I need to know if when I change the CLI DNS in the primary FTD or CLI DNS in the secondary FTD I will have errors with the high availability or errors (wrong configuration, no mismatch configuration, etc) on my FTD change to any errors

How I can make this change safely?

How I can resolve this case and no trouble?

7 Replies 7

balaji.bandi
Hall of Fame
Hall of Fame

why not change using FMC - platform settings ?

you can do changes on FTD active device -

configure network dns server x.x.x.x

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Platform setting is ok with the correct DNS. But, Platform setting only use DNS for name resolution for politics or configuration no for FTD manager resolution (my fail is to connect the FTD to cisco cloud)

 

then you can configure from command level as i have suggested.

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

The question is. when I configure the new DNS over CLI in the active FTD, this action affect to High Availability due mismatch configuration with the FTD secondary? How affect this to the HA?

The local server bootstrap settings (management address, gateway, DNS server etc.) do not replicate between members of an HA pair (or among cluster members).

if you looking only Manangment then you can configure using Cli. that not have replicated to standby.

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

I have little info. about FTD but there is DS primary and secondary 
you can add new DNS as secondary, 
and if the FTD can not connect primary it will shift to secondary.
check this solution 

Review Cisco Networking for a $25 gift card